Senior DevSecOps Engineer

Full-time
Colombia
Senior Level
Posted 1 hour ago
Apply for this position → Go ad-free with Premium ×

Join Blossom!

We are a U.S.-based company with over 20 years of experience dedicated to enhancing the satisfaction of credit unions and their members. We are committed to developing simpler and more innovative financial services that assist credit unions in serving their current members and attracting new ones. We are building the next-generation technology layer for credit unions.
www.blossom.net

We’re looking for a hands-on and security-minded Senior Release & Pipeline Security Engineer with 5+ years of software or platform engineering experience, including at least 3 years owning CI/CD and deployment pipelines in production, who thrives in building capability from a low starting point and is comfortable working across multiple build ecosystems, including PHP and .NET or Java. The ideal candidate designs fast, safe and repeatable deployments, embeds strong security controls (SAST, SCA, dependency scanning and secrets management) directly into the delivery pipeline, and works alongside squads to hand over ownership, supporting a faster, more reliable release cadence in a regulated financial services environment.

About the position

Blossom builds core and digital banking, payments and hardware solutions for U.S. credit unions. We are moving from a monthly release cycle to a biweekly cadence, and then to on-demand releases. Automated testing is part of that change, but it is not enough on its own. The cadence only changes when deployments are short, safe and repeatable.

As the founding engineer of our Security & Performance enabling team, you will own the delivery pipeline end to end: CI/CD, release engineering, versioning and the security controls that protect every release on its way to production. You will work across all product lines in the area: Swipe, Payments & Dough, Blossom Integrations, Branch, Core Interface and Blossom Lite. This is a build role, not a maintenance role. You will design the capability, put it in place inside the squads and leave them able to run it themselves.

Duties

  • Design, build and operate CI/CD pipelines across product lines, moving from manual, release-window deployments to automated, repeatable ones.
  • Measure and reduce deployment lead time to enable a biweekly and then on-demand release cadence.
  • Own semantic versioning, the release tagging strategy and branching models across repositories.
  • Automate release notes, build reliable rollback paths and introduce feature flags to separate deployment from release.
  • Put automated security gates in the pipeline: SAST, SCA, dependency scanning, secrets management and artifact signing.
  • Lead vulnerability triage with the squads, setting severity thresholds that block real risk without stopping delivery for noise.
  • Make the pipeline a trustworthy final line of defense before production as manual regression is retired.
  • Design pipeline controls that meet audit and segregation-of-duties requirements for a regulated payments environment, and produce the evidence trail auditors and clients expect.
  • Work as an enabling team: set up capabilities inside squads, transfer ownership and move on, rather than becoming a permanent gatekeeper.
  • Coach engineers on pipeline practices, release hygiene and secure delivery, partnering with QA, engineering leads and the CTO organization.

Requirements

  • Bachelor’s degree in Systems Engineering, Computer Science, Software Engineering or a related field. Equivalent hands-on experience is considered.
  • 5+ years in software or platform engineering, including at least 3 years owning CI/CD and deployment pipelines in production.
  • Experience building a delivery pipeline from a low starting point, not only maintaining a mature one.
  • CI/CD design and operations with GitHub Actions, GitLab CI, Jenkins or equivalent, beyond scripting.
  • Release engineering: semantic versioning, tagging, branching models, release notes automation, rollback and feature flags.
  • Containerization and orchestration (Docker, Kubernetes or equivalent) and infrastructure as code.
  • Pipeline security: SAST, SCA, dependency scanning, secrets management, artifact signing and vulnerability triage.
  • Cloud platform experience, and familiarity with PHP and .NET or Java build ecosystems.
  • Comfort working with audit and segregation-of-duties requirements in a regulated environment.
  • Working English for written collaboration with U.S. stakeholders.

Perks

  • 100% Remote Work – Work from anywhere during the contract period.
  • Multicultural Environment – Collaborate with global teams.
  • Learning & Exposure – Gain hands-on experience in a fintech/digital banking environment.
  • Impactful Work – Contribute to data solutions that drive strategic decisions.

Apply Now!

Go ad-free with Premium ×
Apply for this position →
Check if your resume is a good fit
25/100
Get Full Report
+ 1,284 new jobs added today
50,000+
Remote Jobs

Don't miss out — new listings every hour

Join Premium

Senior DevSecOps Engineer

Join Blossom!

We are a U.S.-based company with over 20 years of experience dedicated to enhancing the satisfaction of credit unions and their members. We are committed to developing simpler and more innovative financial services that assist credit unions in serving their current members and attracting new ones. We are building the next-generation technology layer for credit unions.
www.blossom.net

We’re looking for a hands-on and security-minded Senior Release & Pipeline Security Engineer with 5+ years of software or platform engineering experience, including at least 3 years owning CI/CD and deployment pipelines in production, who thrives in building capability from a low starting point and is comfortable working across multiple build ecosystems, including PHP and .NET or Java. The ideal candidate designs fast, safe and repeatable deployments, embeds strong security controls (SAST, SCA, dependency scanning and secrets management) directly into the delivery pipeline, and works alongside squads to hand over ownership, supporting a faster, more reliable release cadence in a regulated financial services environment.

About the position

Blossom builds core and digital banking, payments and hardware solutions for U.S. credit unions. We are moving from a monthly release cycle to a biweekly cadence, and then to on-demand releases. Automated testing is part of that change, but it is not enough on its own. The cadence only changes when deployments are short, safe and repeatable.

As the founding engineer of our Security & Performance enabling team, you will own the delivery pipeline end to end: CI/CD, release engineering, versioning and the security controls that protect every release on its way to production. You will work across all product lines in the area: Swipe, Payments & Dough, Blossom Integrations, Branch, Core Interface and Blossom Lite. This is a build role, not a maintenance role. You will design the capability, put it in place inside the squads and leave them able to run it themselves.

Duties

  • Design, build and operate CI/CD pipelines across product lines, moving from manual, release-window deployments to automated, repeatable ones.
  • Measure and reduce deployment lead time to enable a biweekly and then on-demand release cadence.
  • Own semantic versioning, the release tagging strategy and branching models across repositories.
  • Automate release notes, build reliable rollback paths and introduce feature flags to separate deployment from release.
  • Put automated security gates in the pipeline: SAST, SCA, dependency scanning, secrets management and artifact signing.
  • Lead vulnerability triage with the squads, setting severity thresholds that block real risk without stopping delivery for noise.
  • Make the pipeline a trustworthy final line of defense before production as manual regression is retired.
  • Design pipeline controls that meet audit and segregation-of-duties requirements for a regulated payments environment, and produce the evidence trail auditors and clients expect.
  • Work as an enabling team: set up capabilities inside squads, transfer ownership and move on, rather than becoming a permanent gatekeeper.
  • Coach engineers on pipeline practices, release hygiene and secure delivery, partnering with QA, engineering leads and the CTO organization.

Requirements

  • Bachelor’s degree in Systems Engineering, Computer Science, Software Engineering or a related field. Equivalent hands-on experience is considered.
  • 5+ years in software or platform engineering, including at least 3 years owning CI/CD and deployment pipelines in production.
  • Experience building a delivery pipeline from a low starting point, not only maintaining a mature one.
  • CI/CD design and operations with GitHub Actions, GitLab CI, Jenkins or equivalent, beyond scripting.
  • Release engineering: semantic versioning, tagging, branching models, release notes automation, rollback and feature flags.
  • Containerization and orchestration (Docker, Kubernetes or equivalent) and infrastructure as code.
  • Pipeline security: SAST, SCA, dependency scanning, secrets management, artifact signing and vulnerability triage.
  • Cloud platform experience, and familiarity with PHP and .NET or Java build ecosystems.
  • Comfort working with audit and segregation-of-duties requirements in a regulated environment.
  • Working English for written collaboration with U.S. stakeholders.

Perks

  • 100% Remote Work – Work from anywhere during the contract period.
  • Multicultural Environment – Collaborate with global teams.
  • Learning & Exposure – Gain hands-on experience in a fintech/digital banking environment.
  • Impactful Work – Contribute to data solutions that drive strategic decisions.

Apply Now!